realloc_symlink in rock.c in GNU libcdio prior to 1.0.0 allows remote malicious users to cause a denial of service (NULL Pointer Dereference) via a crafted iso file.
Synopsis
Low: libcdio security update
Type/Severity
Security Advisory: Low
Topic
An update for libcdio is now available for Red Hat Enterprise Linux 7Red Hat Product Security has rated this update as having a security impact of Low A Common Vulnerability Scoring System (CVSS) base score, which gives a det ...
A heap corruption bug was found in the way libcdio handled processing of ISO files An attacker could potentially use this flaw to crash applications using libcdio by tricking them into processing crafted ISO files, thus resulting in local DoS(CVE-2017-18198)
A double-free flaw was found in the way libcdio handled processing of ISO files An attac ...
A NULL pointer dereference flaw was found in the way libcdio handled processing of ISO files An attacker could potentially use this flaw to crash applications using libcdio by tricking them into processing crafted ISO files ...
realloc_symlink in rockc in GNU libcdio before 100 allows remote attackers to cause a denial of service (NULL Pointer Dereference) via a crafted iso file ...